CVE-2018-6555 (retired)

The irda_setsockopt function in net/irda/af_irda.c and later indrivers/staging/irda/net/af_irda.c in the Linux kernel before 4.17 allowslocal users to cause a denial of service (ias_object use-after-free andsystem crash) or possibly have unspecified other impact via an AF_IRDAsocket.

Ubuntu-Description

It was discovered that a use-after-free vulnerability existed in the IRDAimplementation in the Linux kernel. A local attacker could use this tocause a denial of service (system crash) or possibly execute arbitrarycode.